Question about way to set up authenticating wifi users with purely custom or meraki certificates

KayKang
Just browsing

Question about way to set up authenticating wifi users with purely custom or meraki certificates

Hi,

 

We're trying to set up for wifi user authentication using custom or meraki provided certificates, without using username or password to access wifi network.

So that only office PCs having certificates can access office wifi network.

Can someone explain how to or where to setup it?  

3 Replies 3
Brash
Kind of a big deal
Kind of a big deal

This would be done using machine authentication and a RADIUS server. It's not crazy difficult but does require you having a PKI and RADIUS server.

 

https://documentation.meraki.com/MR/Encryption_and_Authentication/Configuring_RADIUS_Authentication_...

GreenMan
Meraki Employee
Meraki Employee

Or you could use Systems Manager (with Sentry) to fully control your devices, including providing an appropriate WiFi profile.   With this option Meraki provides the X.509 certs and cloud RADIUS.

https://documentation.meraki.com/SM/Deployment_Guides/Systems_Manager_Sentry_Overview

 

If you can't or don't want to fully manage the devices (maybe they are staff-owned?) then consider Trusted Access

https://documentation.meraki.com/General_Administration/Cross-Platform_Content/Trusted_Access_for_Se...

 

Ether of these options will require you to purchase Systems Manager licences for the devices requiring connectivity.

 

You may still need to use username and password as an initial means of setup - after all, you still want to check what's connecting to your network to start with, right?

alemabrahao
Kind of a big deal
Kind of a big deal

I think it'll help you.

 

https://dailysysadmin.com/KB/Article/690/configure-802-1x-certificate-based-authentication-meraki-wi...

I am not a Cisco Meraki employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.

Please, if this post was useful, leave your kudos and mark it as solved.
Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.
Labels